Описание
In Moonlight iOS/tvOS before 4.0.1, the pairing process is vulnerable to a man-in-the-middle attack. The bug has been fixed in Moonlight v4.0.1 for iOS and tvOS.
Ссылки
- PatchThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.0.1 (исключая)Версия до 4.0.1 (исключая)
Одно из
cpe:2.3:a:moonlight-stream:moonlight:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:moonlight-stream:moonlight:*:*:*:*:*:tvos:*:*
EPSS
Процентиль: 44%
0.00219
Низкий
6.1 Medium
CVSS3
8.2 High
CVSS3
4.9 Medium
CVSS2
Дефекты
CWE-300
CWE-200
EPSS
Процентиль: 44%
0.00219
Низкий
6.1 Medium
CVSS3
8.2 High
CVSS3
4.9 Medium
CVSS2
Дефекты
CWE-300
CWE-200